๐ฑ๐ป
garmtech.com
2026-08-04 07:40:19
(3 weeks ago)
IM360 WAF: WordPress wp2shell REST batch endpoint before 7.0.2 or 6.9.5 (CVE-2026-63030) MV:12
Hacking
๐ฑ๐ป
garmtech.com
2026-08-03 03:15:55
(3 weeks ago)
IM360 WAF: WordPress wp2shell REST batch endpoint before 7.0.2 or 6.9.5 (CVE-2026-63030) MV:0
Hacking
๐ณ๐ฑ
wlt-blocker
2026-04-13 02:56:17
(4 months ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-16 11:45:54
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.235.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.235.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 16 07:45:50.047930 2025] [security2:error] [pid 12585:tid 12585] [client 45.148.235.137:9935] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||alsetsystems.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "alsetsystems.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aPDa7tXQJNIOddSf5tkupQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-15 11:51:04
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.235.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.235.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 15 07:50:58.349904 2025] [security2:error] [pid 23048:tid 23048] [client 45.148.235.137:15083] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dandksupply.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dandksupply.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aO-KotG5dv9ArkJguQjElQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ณ
Shaik Sai Meera
2025-10-14 05:14:23
(10 months ago)
IM360 WAF: Monitoring WordPress 5.3 User Enumeration attempts - Sun Oct 12 21:41:57 2025
Web App Attack
๐จ๐ญ
backslash
2025-10-13 14:55:15
(10 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-10-10 09:50:12
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.235.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.235.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 10 05:50:08.775591 2025] [security2:error] [pid 15173:tid 15173] [client 45.148.235.137:18495] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.saadeh.ws|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.saadeh.ws"] [uri "/wp-json/wp/v2/users"] [unique_id "aOjW0AoJCaJ523PhIaBHSwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
mpqtyler
2025-09-29 09:00:37
(10 months ago)
Failed order. WooCommerce store.
Fraud Orders
๐จ๐ณ
ThreatBook.io
2025-05-01 23:08:35
(1 year ago)
ThreatBook Intelligence: Zombie,Spam more details on https://threatbook.io/ip/45.148.235.137
2025-05 ...
show more
ThreatBook Intelligence: Zombie,Spam more details on https://threatbook.io/ip/45.148.235.137
2025-05-01 01:06:59 /+CSCOE+/logon.html
show less
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-04-24 23:03:33
(1 year ago)
2025-04-24 18:48:03 /+CSCOE+/logon.html
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-09 20:58:22
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.148.235.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.235.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 16:58:19.087254 2025] [security2:error] [pid 19179:tid 19302] [client 45.148.235.137:32491] [client 45.148.235.137] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "media928.com"] [uri "/.env"] [unique_id "Z84A68URSr86s-m3nOTXVgAAAdc"], referer: https://tasamm.com/about/mmm155.html
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-02-27 02:13:54
(1 year ago)
Ports: *; Direction: 0; Trigger: CT_LIMIT
Brute-Force
SSH
๐ฒ๐น
Malta
2024-12-24 01:47:39
(1 year ago)
45.148.235.137 - - [24/Dec/2024:02:47:39 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows; ...
show more
45.148.235.137 - - [24/Dec/2024:02:47:39 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10"
show less
Hacking
Web App Attack
Anonymous
2024-10-15 13:41:09
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH